Hey Matthew,

2011/9/5 Matthew Sherborne <[email protected]>:
> Does it do persistent user sessions too ?

Yes. We've kind of followed the "best practices" here:

http://stackoverflow.com/questions/549/the-definitive-guide-to-forms-based-website-authentication

Currently we have:
 - password authentication for strong login
 - "rememberme" cookies which offers weak login
 - email-based confirmation and lost-password functionality
 - login throttling to avoid brute force password guessing
 - registration and password change forms (work in progress)

But it is modular and most of these functions are optional.

Regards,
koen

------------------------------------------------------------------------------
Special Offer -- Download ArcSight Logger for FREE!
Finally, a world-class log management solution at an even better 
price-free! And you'll get a free "Love Thy Logs" t-shirt when you
download Logger. Secure your free ArcSight Logger TODAY!
http://p.sf.net/sfu/arcsisghtdev2dev
_______________________________________________
witty-interest mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/witty-interest

Reply via email to